#defenderforo365 search results
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Join my Session about #DefenderForO365 regarding #AdvancedHunting this Thursday at 16:00 meetup.com/de-DE/CloudWor…
Microsoft 365 Defender services: - Microsoft Defender for Endpoint - Microsoft Defender Vulnerability Management - Microsoft Defender for Office 365 - Microsoft Defender for Identity - Microsoft Defender for Cloud Apps #ms365defender #defenderforendpoint #defenderforo365
#Defenderforendpoints #Defenderforo365 #Defenderforidentity #Defenderforcloudapps #Defenderforcloud #Defenderforiot #Defender #sentinel #MicrosoftSecurity #infosec #Infosec2022 #infosecurity #cybersecuritytips
Supported remediation actions in MS 365 Defender: Endpoint - - Collect investigation package - Isolate device - Release from isolation - Offboard machine - Release code execution - Release from quarantine - Request sample - Restrict code execution (this action can be undone)
Advanced Hunting: Surfacing more email data from Microsoft Defender for Office 365: techcommunity.microsoft.com/t5/microsoft-3… #AdvancedHunting #DefenderForO365 #EmailSecurity #Phishing
One tool I see many companies with #Microsoft365 not utilizing enough for email troubleshooting is Threat Explorer. Such a powerful tool to have when investigating phishing, malware, and general email deliverability. #EOP #DefenderForO365 protection.office.com/threatexplorer
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
Microsoft 365 Defender services: - Microsoft Defender for Endpoint - Microsoft Defender Vulnerability Management - Microsoft Defender for Office 365 - Microsoft Defender for Identity - Microsoft Defender for Cloud Apps #ms365defender #defenderforendpoint #defenderforo365
#Defenderforendpoints #Defenderforo365 #Defenderforidentity #Defenderforcloudapps #Defenderforcloud #Defenderforiot #Defender #sentinel #MicrosoftSecurity #infosec #Infosec2022 #infosecurity #cybersecuritytips
Supported remediation actions in MS 365 Defender: Endpoint - - Collect investigation package - Isolate device - Release from isolation - Offboard machine - Release code execution - Release from quarantine - Request sample - Restrict code execution (this action can be undone)
Join my Session about #DefenderForO365 regarding #AdvancedHunting this Thursday at 16:00 meetup.com/de-DE/CloudWor…
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Advanced Hunting: Surfacing more email data from Microsoft Defender for Office 365: techcommunity.microsoft.com/t5/microsoft-3… #AdvancedHunting #DefenderForO365 #EmailSecurity #Phishing
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
One tool I see many companies with #Microsoft365 not utilizing enough for email troubleshooting is Threat Explorer. Such a powerful tool to have when investigating phishing, malware, and general email deliverability. #EOP #DefenderForO365 protection.office.com/threatexplorer
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Something went wrong.
Something went wrong.
United States Trends
- 1. Raindotgg 1,237 posts
- 2. Louisville 14.2K posts
- 3. Lubin 5,211 posts
- 4. #GoAvsGo 1,476 posts
- 5. Batum N/A
- 6. Nuss 5,532 posts
- 7. UCLA 7,657 posts
- 8. Emmett Johnson 2,229 posts
- 9. Miller Moss 1,193 posts
- 10. #Huskers 1,061 posts
- 11. Sam Houston N/A
- 12. #FlyTogether 1,756 posts
- 13. #MASHLE 1,267 posts
- 14. Bama 13.7K posts
- 15. Oilers 4,560 posts
- 16. #Toonami 1,755 posts
- 17. Nikki Glaser N/A
- 18. Brohm 1,141 posts
- 19. Lateef 2,238 posts
- 20. Jalen Green 2,532 posts